Description
MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-quote) token, aka an empty bit-string literal, which allows remote attackers to cause a denial of service (daemon crash) by using this token in a SQL statement.
Remediation
References
Related Vulnerabilities
Jenkins Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-43497)
PHP mail function ASCII control character header spoofing vulnerability
WordPress Plugin Random image gallery with pretty photo zoom Cross-Site Scripting (7.4)